How to catch GitHub Actions workflow injections before attackers do
Strengthen your repositories against actions workflow injections — one of the most common vulnerabilities.
Explore the latest blogs from GitHub on all things software development from the newest capabilities on the GitHub platform to research and insights—and guides to help you level up your engineering skills.
Strengthen your repositories against actions workflow injections — one of the most common vulnerabilities.
That idea you’ve been sitting on? The domain you bought at 2AM? A silly or serious side project? This summer, we invite you to build it — for the joy, for the vibes, For the Love of Code 🧡
Explore how you can set Copilot coding agent up for success with custom instruction and Copilot setup steps.
When it comes to merging code, developers will always make the final decision. But we’re rethinking how tools like GitHub Copilot can help.
Discover how to increase the coverage of your CodeQL CORS security by modeling developer headers and frameworks.
Ensuring quality code suggestions from Copilot goes beyond the perfect prompt. Context is key to success when working with your AI pair programmer.
Today, the Git project released new versions to address seven security vulnerabilities that affect all prior versions of Git.
DjVuLibre has a vulnerability that could enable an attacker to gain code execution on a Linux Desktop system when the user tries to open a crafted document.
Learn how to streamline your development workflow with five different MCP use cases.
A practical guide to GitHub Copilot’s agentic coding agent, chat modes, and remote MCP server so you turn issues into tested PRs with clear steps (and no hype).
The GitHub dependency graph maps every direct and transitive dependency in your project, so you can identify risks, prioritize fixes, and keep your code secure.
Use these insights to automate software security (where possible) to keep your projects safe.
AI agents in GitHub Copilot don’t just assist developers but actively solve problems through multi-step reasoning and execution. Here’s what that means.
AI can help you code faster, but knowing why the code works—and sharpening your human-in-the-loop skills—is what makes you a great developer.
Learn how to build your first space in minutes and customize Copilot to match your team’s unique coding style and workflows.
Reduce context-switching, minimize manual work, and accelerate resolution times with these new AI-powered features.
The open source Git project just released Git 2.50. Here is GitHub’s look at some of the most interesting features and changes introduced since last time.
Tech debt is a big problem that no one has time to solve. GitHub Copilot coding agent can help.
In May, we experienced three incidents that resulted in degraded performance across GitHub services.
Our best practices for quickly identifying, resolving, and preventing issues at scale.
Learn how to use GitHub Copilot to help review and polish your code.
Build what’s next on GitHub, the place for anyone from anywhere to build anything.
Catch up on the GitHub podcast, a show dedicated to the topics, trends, stories and culture in and around the open source developer community on GitHub.